CVE-2025-2618 | D-Link DAP-1620 1.03 Path /dws/api/ set_ws_action heap-based overflow
A vulnerability, which was classified as critical, has been found in D-Link DAP-1620 1.03. Affected by this issue is the function set_ws_action of the file /dws/api/ of the component Path Handler. The manipulation leads to heap-based buffer overflow. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is handled as CVE-2025-2618. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.